Two severe vulnerabilities have been patched in Facebook for WordPress Plugin, which has been installed on over 500,000 websites. An attacker exploiting the most severe vulnerability could supply the plugin with PHP objects for malicious purposes, and upload files to a vulnerable website and achieve Remote Code Execution (RCE).
The opinions expressed in this post belongs to the individual contributors and do not necessarily reflect the views of Information Security Buzz.